5
CVSSv2

CVE-2013-2086

Published: 14/03/2014 Updated: 17/03/2014
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The configuration loader in ownCloud 5.0.x prior to 5.0.6 allows remote attackers to obtain CSRF tokens and other sensitive information by reading an unspecified JavaScript file.

Affected Products

Vendor Product Versions
OwncloudOwncloud5.0.0, 5.0.1, 5.0.2, 5.0.3, 5.0.4, 5.0.5